Set up OPT1 Interface with IP range different from LAN, including DHCP, DNS and outbound NAT.
Create FW rule on LAN to block traffic to OPT1network and vice versa. Done.
Create FW rule on LAN to block traffic to OPT1network and vice versa. Done.
"